SHA1 depreciation ??

Robert J. Hansen rjh at sixdemonbag.org
Fri Jun 30 05:26:06 CEST 2017


> As for the current version v4, SHA1 is used to compute the fingerprint.
> Are there other mandatory places?

Yes.  Search the RFC for the term "SHA-1" and you'll find them.  It's
hardwired into several of the packet formats, for instance.

> Do you know any time frame and significant changes of v5 specs?

No.  The WG is being annoyingly slow.




More information about the Gnupg-users mailing list